CVE-2025-57631: SQL Injection
Published Sep 16, 2025
·Updated
SQL Injection vulnerability in TDuckCloud v.5.1 allows a remote attacker to execute arbitrary code via the Add a file upload module
Affected Software
2 affected components
TDuckCloud TDuckCloud
TDuckCloud TDuck=5.1
Event History
Sep 16, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-57631?
CVE-2025-57631 is classified as a high-severity SQL Injection vulnerability.
2
How do I fix CVE-2025-57631?
To fix CVE-2025-57631, update to the latest version of TDuckCloud that addresses this SQL Injection flaw.
3
What impact does CVE-2025-57631 have on my system?
CVE-2025-57631 allows remote attackers to execute arbitrary code, potentially compromising system integrity.
4
How can I detect CVE-2025-57631 on my system?
You can detect CVE-2025-57631 by scanning your application for known patterns of SQL Injection vulnerabilities.
5
Is CVE-2025-57631 exploitable without authentication?
Yes, CVE-2025-57631 can be exploited by remote attackers without requiring user authentication.